Monday, May 7, 2012

#HPN #5400 #802.1x w/mac auth and guest vlan config sample


Running configuration:

; J8697A Configuration Editor; Created on release #K.15.06.0006
; Ver #01:0d:0c

hostname "5406-Procurve"

vlan 1
   name "production"
   untagged A1-A24,B1-B24,C1-C2
   ip address 192.168.1.40 255.255.255.0
   exit
vlan 25
   name "vlan25-guest"
   ip address 172.16.1.40 255.255.255.0
   tagged A1
   exit

radius-server host 192.168.1.100 key "hphp1234"

aaa accounting update periodic 15
aaa accounting network start-stop radius
aaa authentication login privilege-mode
aaa authentication telnet login radius
aaa authentication telnet enable radius local
aaa authentication ssh enable radius local
aaa authentication port-access eap-radius


aaa port-access authenticator B1-B20
aaa port-access authenticator B1 auth-vid 1
aaa port-access authenticator B1 client-limit 2

aaa port-access authenticator active


aaa port-access mac-based B1-B20
aaa port-access mac-based B1 unauth-period 1
aaa port-access mac-based B1 unauth-vid 25

aaa port-access mac-based addr-format multi-dash

No comments:

Post a Comment